The Loctouch application 3.4.6 and earlier for Android does not properly handle implicit intents, which allows attackers to obtain sensitive information about logged locations via a crafted application.
References
Configurations
History
No history.
Information
Published : 2012-12-26 17:55
Updated : 2013-01-08 05:00
NVD link : CVE-2012-5182
Mitre link : CVE-2012-5182
CVE.ORG link : CVE-2012-5182
JSON object : View
Products Affected
naver
- loctouch
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor